Phishing detection: roblox.com.am

Roblox
https://roblox.com.am/users/147013942575/profile Access site
Screenshot
No screenshot available yet Captured automatically on the next refresh cycle
Investigate
URL https://roblox.com.am/users/147013942575/profile
Phishunt analysis Beta
34 medium suspicion suspiciousheuristic risk score · not a probability
Why?
  • +5.3 Keyword match
  • +4.5 Brand in title
  • +4.1 Brand in screenshot
  • +3.2 Brand favicon
  • +3.0 OpenPhish
  • +2.2 Country mismatch
  • +1.7 Shared IP cluster
  • +1.3 Brand typo
  • +1.1 ASN reputation
  • +1.1 Cert reuse
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +1.0 Site cluster
  • +0.7 Brand in cert SAN
  • +0.6 Brand impersonation in path
  • +0.6 Suspicious TLD
  • +0.5 Young certificate
  • +0.3 Free CA
  • +0.3 Long domain
  • +0.2 External scripts
  • +0.1 Deep subdomain
22 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Impersonates Roblox by embedding the brand's legitimate TLD as a label under the .am TLD. Hosted in the Netherlands via SWISSNET LLC, geographically mismatched from Roblox's infrastructure. Confirmed malicious by OpenPhish, targeting user profiles and likely harvesting account credentials.

Brand impersonation in pathOpenPhishCountry mismatch
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-31 · confidence 78%
Domain & Network
Whois
Network
Country The NetherlandsThe Netherlands
Hosting SWISSNET LLC
ASN AS209373
TLS Cert YE1
External detection OpenPhish
CleanGoogle Safe Browsing · PhishTank · TweetFeed · urlscan.io
Report this phishing

Tracked from 2026-08-31 01:01 UTC  ·  Last refreshed 2026-08-31 03:30 UTC